Northrop Grumman is seeking a Cyber Security Engineer to join our Submarine Trainer Development Team supporting the Naval Undersea Warfare Center (NUWC) in Newport, RI. You will work with a team of systems/software engineers and government cyber security teams to support the Risk Management Framework (RMF) process for large-scale System of Systems high-fidelity simulation, training, and analysis products for the US Navy. This position requires US Citizenship, a DoD Secret Security clearance, and is full-time onsite. You will coordinate, develop, and ensure artifacts for the RMF process are complete as we work towards cyber security accreditation and Authority to Operate (ATO) of Naval Training Systems. This includes software control lists, ATO boundary diagrams, System Security Plan (SSP), Risk Assessment (RA), Interconnection Systems Agreements / Memoranda of Understanding / Memoranda of Agreement (ISA/MOU/MOA), Plan of Action and Milestones (POA&M or POAM), and Risk Assessment Report (RAR). You will work with government program leadership and cyber security team to schedule and support cyber scanning activities of all trainer baselines and application of all Security Technical Implementation Guides (STIGs). The responsibilities for this position are to generate ATO package documentation for submarine training systems, support cyber security scans, review vulnerability documentation, and communicate findings to the engineering team. Qualified applicants will perform the following tasks: Develop and maintain all required cyber security artifacts. Perform cyber security scans and apply STIGs. Work with system engineers and developers to assess cyber impacts on trainer system configurations and software. Work with system engineers to develop cyber mitigation plans when necessary. Work with system engineers to propose improvements to system cyber security posture. Coordinate trainers team response to independent RMF team data-calls.
Learn more about this Employer on their Career Site